The firm I work for has about 40 employees. We recently put in a Windows Terminal server as well as a Cisco ASA. The idea was to offer remote access to our employees by having them first connect through the Cisco VPN and then connecting to the Terminal server. Everything works.
My boss is concerned about maintaining the network's security with this setup and I've been tasked with drafting a company policy to that end.
I am not particularly concerned about anybody doing things maliciously - they can do that without remote access. I am concerned about stupid things, malware and the things that I don't know about that should concern me. After all, I am new to remote access.
I am not sure where to start.
1 - Is our setup smart?
2 - Is there malware that can affect us through Terminal Server?
3 - What type of things should I be concerned about?
Thanks
Zvi
My boss is concerned about maintaining the network's security with this setup and I've been tasked with drafting a company policy to that end.
I am not particularly concerned about anybody doing things maliciously - they can do that without remote access. I am concerned about stupid things, malware and the things that I don't know about that should concern me. After all, I am new to remote access.
I am not sure where to start.
1 - Is our setup smart?
2 - Is there malware that can affect us through Terminal Server?
3 - What type of things should I be concerned about?
Thanks
Zvi